How to block senders with more than 20 bounced emails in the last 15 minutes

poetry

Active Member
May 28, 2020
206
63
33
Hello,
We are trying hard to make sure that our user accounts and machines are secured but sometimes it happens that some user gets his machine or account infected.

After a few incidents we see that if we could detect a high number of bounced emails of some user we could prevent getting our gateway on block lists.

Is there any way we could detect and block senders that are getting high numbers of bounced emails in certain amount of time? It will happen because the spammers will sent email to unknown emails and we will be getting high numbers of bounced email.

Any help or suggestion will be highly appreciated!
 
try postfwd2 or configure your firewall to detect smtp traffic beside your main mail server.